Kompanijos "Palantir" produktai turėtų būti uždrausti įstatymu, o jos veikėjai - paskelbti keliančiais grėsmę demokratinei santvarkai ir nepageidaujamais Europoje 

Daugiau konteksto - @adfichter įraše 

#aktualijos #saugumas #palantir

Adfichter (@[email protected])

Attached: 1 image The war waged by the tech authoritarian oligarchy against the media has reached a new level: #Palantir is suing us. Us, the Republik Magazin. A small Swiss media company, funded by readers, founded in 2018 and free of advertising. I am not aware of any other media company globally that Palantir is currently targeting so aggressively. What is this about? Together with my wonderful colleagues at the WAV research collective Jenny Steiner, Lorenz Naegeli, Marguerite Meyer, and Balz Oertli, we published a two-part series on Palantir's activities in Switzerland on December 8 and 9. Using an extensive corpus of documents – which we obtained thanks to the Freedom of Information Act – we were able to trace a sales campaign over a period of seven years. Palantir tried to get in with many federal authorities – and was rejected everywhere. And we also found out that the Swiss Army Staff evaluated the software and came to the conclusion that the army should refrain from using Palantir products. Among other risks, they feared that data would be passed on to the US authorities. Palantir is not just any company. ICE uses its products to hunt down migrants in the US. The Israeli army IDF uses the software in its Gaza offensive. The British health authority NHS has made itself dependent on the products for data analysis during the pandemic. And CEO #AlexKarp displays inhuman and aggressive rhetoric towards Europe, while the company itself advertises the “optimization of the kill chain.” These are all facts, repeatedly verified and published by renowned media outlets. Our research relating to Switzerland and Zurich is based on this. In addition to analyzing documents, we also spoke to various sources – including Palantir executives here in Zurich. The quotes used were presented to them and approved. Of course, we always adhered to the high standards of journalistic work. We conducted a thorough fact check before publication. But the company doesn't want us to write the truth. After the US company owned by right-wing tech billionaire #PeterThiel dedicated an absurd blog post to us, claiming some misinformation (such as that they had not participated in official tenders with the federal administration, a point we never claimed. On the contrary: we spoke from the outset of attempts to establish contact, sales talks, informal meetings, business as usual), after the Global Director of Privacy & Civil Liberties (PCL) Engineering and contact person for Swiss media Courtney Bowman launched personal attacks against us in LinkedIn comments between Christmas and New Year (“partisan fear-mongering”), Palantir's Swiss lawyers demanded a counterstatement on December 29. We rejected this in its entirety. In January, they demanded the same thing again. We rejected it again. And now we see each other in court. But why all this? Our research on the Swiss army report caused a huge international media response. The Guardian and the Austrian newspaper Der Standard reported on the Swiss army's rejection. Numerous financial portals and stock market magazines picked up our news (which could have consequences for the overvalued stock market company Palantir). And Chaos Computer Club spokesperson Constanze Kurz presented our research to a huge audience at the renowned IT conference Chaos Communication Congress in Hamburg at the end of December. All of this is making Palantir nervous. We have now submitted a comprehensive defense brief. We can substantiate all of our findings with several documents and publicly available media reports. We trust in the rule of law and freedom of the press in this country. In keeping with yesterday's event “Zurich, little Big Tech City” at the Gessneralle, where we first announced this news exclusively to the audience on site: World politics will soon be negotiated in Zurich: freedom of the press, the facts about ICE, Trump, Israel, Karp, tech authoritarianism. The truth. All this at the Zurich Commercial Court. We will not be intimidated. And we will keep you informed.

Infosec Exchange

Redis Critical Remote Code Execution Vulnerability Discovered After 13 Years

https://group.lt/post/5401524

Redis Critical Remote Code Execution Vulnerability Discovered After 13 Years - Internet burnout

>Redis recently released a security advisory regarding CVE-2025-49844. This critical (CVSS 10.0) use-after-free (UAF) vulnerability in Lua scripting could allow authenticated attackers to execute remote code on older versions of Redis and Valkey with Lua scripting enabled. Developers are urged to upgrade to patched releases as soon as possible. >The vulnerability exploits a 13-year-old UAF memory corruption bug in Redis, allowing a post-auth attacker to send a crafted Lua script to escape the default Lua sandbox and execute arbitrary native code. This grants full host access, enabling data theft, wiping, encryption, resource hijacking, and lateral movement within cloud environments. >13 years. That’s how long it took to find a critical safety vulnerability in one of the most popular C open source codebases, Redis.

SIMCARTEL operation: Europol takes down SIM-Box ring linked to 3,200 scams

https://group.lt/post/5239492

SIMCARTEL operation: Europol takes down SIM-Box ring linked to 3,200 scams - Internet burnout

The Europol SIMCARTEL operation shows that fighting crime is essential, but it also raises a warning: in the EU, SIM cards and communications are already under strict surveillance and control. While dismantling criminal networks is a good cause, we must not let it justify the erosion of fundamental privacy and personal freedoms for everyone. We should invest in smarter, less intrusive ways to combat crime rather than resort to blanket surveillance so that both security and the right to live untracked can be preserved.

Žodžio laisvė, privatumas ir netgi saugumas Europoje vėl pavojuje – reikia veikti

https://group.lt/post/4865658

Žodžio laisvė, privatumas ir netgi saugumas Europoje vėl pavojuje – reikia veikti - Internet burnout

Apie ChatControl lietuviškai

Kreditų biurui Creditinfo, veikiančiam ir Lietuvoje, patyrus kibernetinę ataką galimai, vis dėlto, nutekėjo ir lietuvių duomenys, nors anksčiau buvo tvirtinama priešingai.

Raginu parašyti laišką [email protected] ir paklausti, nes savo iniciatyva, panašu, neketina informuoti.

Parašyti laišką turėtumėte jei bent kartą esate naudojęsi prenumeruojamomis ar komunalinėmis, taip pat finansinėmis paslaugomis 

#saugumas #incidentas #aktualijos #Lietuvoje

„Creditinfo“ patyrus kibernetinę ataką nutekėjo 29 tūkst. Lietuvos vartotojų duomenys

Liepos 25 d. buvo išplatinta žinia, kad tarptautinė kredito informacijos bendrovė „Creditinfo“ patyrė milžinišką kibernetinę ataką. Tuomet įmonė teigė, kad tai Lietuvos vartotojų nepaveikė. Tačiau 15min duomenimis, dalis lietuvių duomenų visgi buvo nutekinta.

lrt.lt

Jei kam įdomu, WeTransfer keičia naudojimo sąlygas. Neminint to, kad naudos DI treniravimui, taip pat galės absoliučiai bet ką daryt su įkeltu turiniu, įskaitant pardavimą ir net parduoti teisę, kad kiti galėtų pardavinėti

Mano patarimas, jei vis tik toliau naudosit - net vieną failą įkeliant, jį Zip'uokit su tikrai stipriu slaptažodžiu

#privatumas #saugumas

The UK is likely to back down from forcing Apple to weaken encryption due to US pressure.

https://group.lt/post/4534870

The UK is likely to back down from forcing Apple to weaken encryption due to US pressure. - Internet burnout

- The UK government ordered Apple to create a “back door” into its most secure cloud storage, citing national security and crime prevention. - The US, especially Vice President JD Vance and President Trump, strongly opposes this, seeing it as a threat to free speech and privacy, and a risk to tech partnerships. - Apple withdrew its secure service from the UK and is legally challenging the order, with WhatsApp joining the fight. - The UK’s stance is jeopardizing tech and data agreements with the US and complicating future AI regulation. - UK officials admit the Home Office mishandled the issue and will likely have to retreat to avoid damaging relations with Washington.

China-linked hackers seen targeting Taiwan's chip industry with increasing attacks

https://group.lt/post/4509659

China-linked hackers seen targeting Taiwan's chip industry with increasing attacks - Internet burnout

Supply chains are the new (old) battleground. - Chinese-linked hackers are targeting the Taiwanese semiconductor industry and investment analysts as part of a string of cyberespionage campaigns. - These groups often target "peripheral suppliers or related industries” - In June where a China-linked hacking group identified by TeamT5 as “Amoeba” launched a phishing campaign against an unnamed chemical company that plays a critical role in the semiconductor supply chain

Unreleased Beyoncé music stolen during 'Cowboy Carter' tour

https://group.lt/post/4494686

Unreleased Beyoncé music stolen during 'Cowboy Carter' tour - Internet burnout

Unreleased Beyoncé music and luxury Apple gear were stolen during the ‘Cowboy Carter’ tour. Classic blunder: thieves grab MacBooks loaded with Find My trackers, making escapes a digital nightmare. It’s poetic: artists now rely on surveillance capitalism to protect art.

Bankomatų naudotojai yra (ar bent jau turėtų būti) girdėję apie piktavalių pritaisomas papildomas klaviatūras ir kitą įrangą, neleistinai sumontuotą ant bankomatų, duomenims - kortelės PIN kodams ir kt. - vogti.

Štai tokią apsaugos priemonę šiandien pamačiau Circle K degalinės kolonelėje - ant PIN kodo įvedimo klaviatūros užklijuotas degalinių tinklo holografinis lipdukas 

#lietuvoje #aktualijos #saugumas #circlek #degaline